Skip to main content

Help us improve the Digital Marketplace - send your feedback

VODAFONE LIMITED

Dedicated Private Cloud

DPC is a compute platform with functions to support multiple use cases where flexibility, security, compliance, cost-effectiveness, high performance, or low latency are key. DPC provides flexibility to design virtual resources and applications, using the benefits associated to the cloud while maintaining the predictability and security associated with private infrastructure.

Features

  • We manage your cloud ecosystem for you
  • Total control over access and authorisation
  • Install in VF DC, on premise or 3rd party DC
  • Combine leading Cloud and Connectivity for optimal performance
  • Designed to fit you, in the most cost efficient way
  • 24/7/365 monitoring and management at commercial best practise and Official
  • ISO/IEC 20000-1(IT Service Mgt), ISO 9001 (Quality Mgt Systems)
  • ISO27001 (Information Security Mgt Systems), BS25999 (Business Continuity Mgt Standard)

Benefits

  • Fully Managed Hosting Service
  • More control over your data and infrastructure
  • Always the best fit depending on your needs
  • Trust in high performance
  • Only pay for what you need
  • Flexibility to deploy current and legacy application and services
  • Service availability designed to meet your requirements

Pricing

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at frameworks_team@vodafone.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

6 8 7 5 9 2 4 3 9 0 2 6 7 0 8

Contact

VODAFONE LIMITED Frameworks Team
Telephone: 07775671027
Email: frameworks_team@vodafone.com

About your service

Service categories

Systems Infrastructure Software

Physical and virtual computing

Operating system environments

  • Core Operating Systems
  • Client Operating Systems
  • Embedded/Industrial Operating Systems

Software defined compute

  • Virtual Machine Software
  • Container Infrastructure Software
  • Cloud System Software
Multi cloud support
Yes

Service scope

Software add-on or extension
No
Cloud deployment model
Private cloud
Service constraints
None
System requirements
None

User support

Email or online ticketing support
Yes
Support response times
8am-6pm excluding weekends and bank holidays
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
24 hours, 7 days a week
Web chat support
No
Onsite support
No
Support levels
Vodafone categorises support into different severity levels, please see Service Description & Service Contracts for further details.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
On-boarding guidance is provided as part of the service and is tailored to the service being provided to the customer. Two phase approach with Go-live taking you through the service and handover the solution. A Delivery Handbook and Operations Handbook is provided covering Service desk, self-service, Admin tools, Reporting & Billing. Early Life Support phase, for the first week from go-live Vodafone are available to build your confidence and knowledge of the solution.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
On-boarding guidance is provided as part of the service and is tailored to the service being provided to the customer. Two phase approach with Go-live taking you through the service and handover the solution. A Delivery Handbook and Operations Handbook is provided covering Service desk, self-service, Admin tools, Reporting & Billing. Early Life Support phase, for the first week from go-live Vodafone are available to build your confidence and knowledge of the solution.
End-of-contract process
Exit charges may apply.
Documentation accessibility standard
None or don’t know
How the documentation is accessible
All onboarding and offboarding processes are coordinated by our Cloud Management Team who have a range of methods to share documentation depending on the requirements of the customer. This ranges from sharing via email, to sharing with direct access to a shared online portal.

Using the service

Web browser interface
No
Application to install
No
Designed for use on mobile devices
No
Service interface
No
User support accessibility
WCAG 2.2 AAA
API
No
Customisation available
No

Scaling

Independence of resources
The Hosting Solution Management function can be included as part of the service for capacity planning and performance management activities.

Analytics

Service usage metrics
Yes
Metrics types
Bandwidth, Storage and Transaction Monitoring
Reporting types
Real-time dashboards
Resource tagging
Yes
FOCUS resource tagging
Yes

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Developed Vetting (DV)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 4.0)
Penetration testing frequency
At least once a year
Penetration testing approach
‘IT Health Check’ performed by a CHECK service provider
Protecting data at rest
Physical access control, complying with another standard
Data sanitisation process
Yes
Equipment disposal approach
A third-party destruction service
Data sanitisation type
Physical Destruction / Hardware containing data is completely destroyed

Data importing and exporting

Data export approach
Users can request data export through the service management process. The managed operations team performs the export using VMware-native tools and transfer mechanisms.
Data export formats
  • CSV
  • Other
Other data export formats
  • OVF
  • OFA
  • Flat ASCII
Data import formats
  • CSV
  • Other
Other data import formats
  • OVF
  • OVA
  • Flat ASCII

Data-in-transit protection

Data protection between buyer and supplier networks
Private network or public sector network
Data protection within supplier network
  • TLS (version 1.2 or above)
  • Legacy SSL and TLS (under version 1.2)

Availability and resilience

Guaranteed availability
Service levels can be guaranteed up to 100% and would be determined during the design phase of the customer specific service. Vodafone Data Centers are connected to our MSP (Multi-Service Platform) next-generation network with high-speed resilient links, and global Tier 1 Internet backbone, AS1273. Your Hosting Servers can be accessed over your WAN via our network services such as IP-VPN QoS, Ethernet Wire-line and traditional bandwidth products. PSN access is available including other government network connections. High Availability Solutions are designed to eliminate single points of failure and can span multiple datacentre, while Global Traffic Management (GTM) would enable state full fail-over between the datacentre locations.
Approach to resilience
The design phase is critical in determining the service level appropriate to the criticality of the service. Vodafone is a global Tier 1 provider of Internet connectivity via its AS1273 backbone. We carry hundreds of Gigabits of traffic per second around the globe, via a fast and resilient IP network. Each of the Vodafone Data Centres has resilient, high bandwidth breakout connectivity to our Internet backbone over Vodafone fibre. For multi-site solutions Vodafone recommend the use of Global Traffic Management (GTM) to enable state-full fail-over between Data Centre locations, in case of Data Centre or IT infrastructure failure, as well as to reduce the impact of planned works. Vodafone has over a decade of experience with F5 Networks BIG-IP product family, which offers the required technical features to enable GTM. For databases and other high-bandwidth storage applications Vodafone have a range of connectivity solutions that can provide Private-Line and Gigabit Ethernet services between Vodafone Data Centres
Outage reporting
Great emphasis is placed by Vodafone on monitoring and proactive identification of incidents; The Vodafone Service Desk will raise a proactive trouble ticket and initiate first line diagnostics. The Service Desk will contact the affected users/site to determine the business impact and identify any potential causes for the faults e.g. local site power issues. Vodafone will work with the customer to identify the most effective contact points for the various levels of escalation needed to resolve the issue.

Identity and authentication

User authentication needed
Yes
User authentication
  • Multi-Factor Authentication (MFA)
  • Limited access network (for example PSN)
  • Dedicated link (for example VPN)
Access restrictions in management interfaces and support channels
Remote access to Vodafone systems is limited to authorised personal by various security technologies includes multi-factor authentication, encrypted VPN access, etc. Stateful firewalls act perform as a traffic 'diode' to prevent access into the shared management environment from each customer solution.
Access restriction testing frequency
At least once a year
Management access authentication
  • Multi-Factor Authentication (MFA)
  • Username or password

Audit information for users

Access to user activity audit information
Users receive audit information on a regular basis
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
All detailed in the UK and Group policy library and governed by the UK policy framework. Key polices are Information Security, Classification & materials handling, Vulnerability and Patch management, risk management, change management, incident management.
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
Formal management responsibilities and procedures within Vodafone are in place to ensure satisfactory control of all changes. When changes are made, an audit log containing all relevant information is retained on the Vodafone change management system. Changes to operational systems are only made when there is a valid business reason to do so, such as an increase in the risk to the system.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
Approach - Vulnerability scanning is performed by industry standard a vulnerability management platform. Governance is in place to ensure that appropriate patching and/or remedial action is reviewed and implemented according to the severity and business impact of the vulnerability.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
Vodafone has logging and monitoring capabilities in place along with appropriate storage of log data. The monitoring capability and events are managed and stored within the SIEM solution. The SIEM solution has been built in line with the Cyber Assessment Framework.
Incident management type
Supplier-defined controls
Incident management approach
Incident management processes are in line with ITIL best practice, and integrated with event, problem and change management processes.
Post-quantum cryptography secure
Yes

Secure development

Approach to secure software development best practice
Supplier-defined process

Public sector networks

Connection to public sector networks
Yes
Connected networks
  • Public Services Network (PSN)
  • Police National Network (PNN)

Pricing

Discount for educational organisations
No
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
0%
Between £250,000 and £500,000
0%
Between £500,001 and £1,000,000
0%
Between £1,000,001 and £2,500,000
0%
Between £2,500,001 and £5,000,000
0%
Over £5,000,001
0%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
LRQA
ISO/IEC 27001 accreditation date
Friday 16 August 2024
What the ISO/IEC 27001 doesn’t cover
The Information Security Management System covers Vodafone UK mobile, Fixed and UCS Services and the Business Units that enable and support those Services. Locations are identified by the Services and Business Units that they support. All Annex A controls have been deemed applicable in accordance with the Design, Build and Run model & the Statement of Applicability Version 0.1.

The Data Centre locations are covered by the Vodafone Group ISO27001:2022 certificate.

issued by LRQA - 08/07/25.
Information Security Management System of Vodafone Group functions covering:The Provision, Maintenance and Operations for
Cyber Defence, Data Centres, Network, Infrastructure and Application services for Local Markets and Vodafone Business; Office IT
services, Shared Service Centres and relevant Business Processes.Vodafone Business services includes International Network
Connectivity, Unified Communications, Internet of Things, Cloud & Hosting and Customer Service Desks. This is in accordance with
Statement of Applicability version 19.

Therefore all elements of the proposed services are covered by these certifications.
ISO 28000:2022 certification
No
ISO 9001 certification
Yes
Who accredited the ISO 9001 certification
LRQA
ISO 9001 accreditation date
Tuesday 15 September 2026
What the ISO 9001 doesn’t cover
Vodafone UK certificate does not cover Vodafone Group, this is covered by a Vodafone Group ISO9001 certification.
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
Yes
Who accredited the PCI DSS certification
NCC Group Security Services Ltd
PCI DSS accreditation date
Monday 7 July 2025
What the PCI DSS doesn’t cover
This does not cover UC, AWS or Azure. This are covered by separate certification.
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
E7b3eb7f-32e7-436f-9d63-b023df698463
Cyber essentials plus
Yes
Please provide your Cyber Essentials Plus Certificate Number
Af87bed1-45db-4396-b5a5-0703ffdc35ce
Other security certifications
No

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
    • Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
    • Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
    • Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
    • Volunteering opportunities for staff
    • Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
    • Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
  • Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero

    Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.

    • Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 6: Employment and training: For those who face barriers to employment

    • Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at frameworks_team@vodafone.com. Tell them what format you need. It will help if you say what assistive technology you use.